Ciberdelincuentes atacan a bufetes de abogados con el malware GootLoader y FakeUpdatesSeis bufetes de abogados diferentes fueron atacados en enero y febrero de 2023 como parte...
Day: March 5, 2023
Vulnerabilidad crítica en Oracle WebLogic (CVE-2023-21839)
Vulnerabilidad crítica en Oracle WebLogic (CVE-2023-21839)Se ha publicado el código de explotación para una vulnerabilidad crítica en Oracle WebLogic Server. La vulnerabilidad, identificada como CVE-2023-21839 […]Leer...
Informe anual de seguridad del Browser Security revela los principales riesgos y puntos ciegos de la navegación
Informe anual de seguridad del Browser Security revela los principales riesgos y puntos ciegos de la navegaciónComo interfaz de trabajo principal, el navegador juega un papel...
Cisco parcha falla crítica de Web UI RCE en múltiples teléfonos IP
Cisco parcha falla crítica de Web UI RCE en múltiples teléfonos IPCisco ha abordado una vulnerabilidad de seguridad crítica que se encuentra en la interfaz de...
La Agencia de Ciberseguridad de EE.UU. da la voz de alarma sobre las capacidades letales de Royal Ransomware
La Agencia de Ciberseguridad de EE.UU. da la voz de alarma sobre las capacidades letales de Royal RansomwareLa Agencia de Seguridad de Infraestructura y Ciberseguridad de...
Vulnerabilidad crítica en Oracle WebLogic (CVE-2023-21839)
Vulnerabilidad crítica en Oracle WebLogic (CVE-2023-21839)Se ha publicado el código de explotación para una vulnerabilidad crítica en Oracle WebLogic Server. La vulnerabilidad, identificada como CVE-2023-21839 […]Leer...
2023 Browser Security Report Uncovers Major Browsing Risks and Blind Spots
2023 Browser Security Report Uncovers Major Browsing Risks and Blind SpotsAs a primary working interface, the browser plays a significant role in today's corporate environment. The...
Clustering Phishing Campaign’s Rogue and Fraudulent and Malicious Hosting Infrastructure Pointing to Massive IPFS Web 3.0 Hosting Infrastructure Abuse – An OSINT Analysis
Clustering Phishing Campaign’s Rogue and Fraudulent and Malicious Hosting Infrastructure Pointing to Massive IPFS Web 3.0 Hosting Infrastructure Abuse – An OSINT Analysis Dear blog readers,...
USENIX Security ’22 – Jiaheng Zhang , Tiancheng Xie, Thang Hoang, Elaine Shi, Yupeng Zhang – ‘Polynomial Commitment with a One-to-Many Prover and Applications’
USENIX Security ’22 – Jiaheng Zhang , Tiancheng Xie, Thang Hoang, Elaine Shi, Yupeng Zhang – ‘Polynomial Commitment with a One-to-Many Prover and Applications’Our thanks to...
Autonomous Vehicles Need No Drugs Or Drink To Be Bad Drivers
Autonomous Vehicles Need No Drugs Or Drink To Be Bad DriversHumans often get cited for being influenced by drugs or alcohol when they make terrible decisions....
USENIX Security ’22 – Ning Luo, Samuel Judson, Timos Antonopoulos, Ruzica Piskac, Yale University; Xiao Wang – ‘ppSAT: Towards Two-Party Private SAT Solving’
USENIX Security ’22 – Ning Luo, Samuel Judson, Timos Antonopoulos, Ruzica Piskac, Yale University; Xiao Wang – ‘ppSAT: Towards Two-Party Private SAT Solving’Our thanks to USENIX...
Cry Havoc and let slip dogs of war … there’s an upgraded malware server in town
Cry Havoc and let slip dogs of war ... there's an upgraded malware server in townThreatLabz finds free alternative to Cobalt Strike and other tools used...
‘Russian hacktivists’ brag of flooding German airport sites
'Russian hacktivists' brag of flooding German airport sitesIn other words, script kiddies up to shenanigans again A series of distributed denial-of-service (DDoS) attacks shut down seven...
Intruder alert: FBI tackles ‘isolated’ IT security breach
Intruder alert: FBI tackles 'isolated' IT security breachMove along, totally nothing to see here The FBI claims it has dealt with a cybersecurity "incident" that reportedly...
If you’re struggling to secure email forwarding, it’s not you, it’s … the protocols
If you're struggling to secure email forwarding, it's not you, it's ... the protocolsEggheads prove they can mimic messages and bag bug bounty bucks Analysis Over...
GoDaddy joins the dots and realizes it’s been under attack for three years
GoDaddy joins the dots and realizes it's been under attack for three yearsAlso: Russia may legalize hacking; Oakland declares ransomware emergency; the CVEs you should know...
What Mary, Queen of Scots, can teach today’s cybersec royalty
What Mary, Queen of Scots, can teach today’s cybersec royaltyTech has changed in 400 years. The rules haven’t Opinion Mary, Queen of Scots, was a hapless...
DNA testing biz vows to improve infosec after criminals break into database it forgot it had
DNA testing biz vows to improve infosec after criminals break into database it forgot it hadSettles lawsuit with two states after wider leak that affected millions...
Locking down the remote printer
Locking down the remote printerNo longer a blind spot, printer security is now a grown up conversation says Brother Sponsored Feature As businesses journey deeper into...
Accidental WhatsApp account takeovers? It’s a thing
Accidental WhatsApp account takeovers? It's a thingBlame it on phone number recycling (yes, that's a thing, too) A stranger may be receiving your private WhatsApp messages,...
Global threats fuel cyber defence training
Global threats fuel cyber defence trainingSANS Institute ramps up delivery of new security training courses to help keep info sec pros ahead of cyber criminals Sponsored...
Open source software has its perks, but supply chain risks can’t be ignored
Open source software has its perks, but supply chain risks can't be ignoredWhile app development is faster and easier, security is still a concern Analysis Open...
Lawyers join forces to fight common enemy: The SEC and its probes into cyber-victims
Lawyers join forces to fight common enemy: The SEC and its probes into cyber-victimsDid the financial watchdog just do the impossible and herd cats? More than...
Datacenters in China, Singapore cracked by crims who then targeted tenants
Datacenters in China, Singapore cracked by crims who then targeted tenantsInfiltrators tried to create fake remote hands tasks, alter visitor lists Criminals have targeted datacenter operators...
Kremlin claims Ukraine hackers behind fake missile strike alerts
Kremlin claims Ukraine hackers behind fake missile strike alertsTen cities panic after emergency systems start Putin out warnings of an impending attack Millions of Russians in...
Sensitive DoD emails exposed by unsecured Azure server
Sensitive DoD emails exposed by unsecured Azure serverAWS, Google and Oracle may benefit as Microsoft blames the Pentagon and the Pentagon blames Microsoft A hole in...
FTX fiasco founder SBF faces further fraud charges
FTX fiasco founder SBF faces further fraud chargesFake donors allegedly padded politicians' pockets, both Republican and Democrat FTX founder Sam Bankman-Fried's eight-count indictment related to the...
Dole production plants crippled by ransomware, stores run short
Dole production plants crippled by ransomware, stores run shortYes, we have no bananas, and things aren't looking peachy on the salad front Irish agricultural megacorp Dole...
Suspected Russian NLBrute malware boss extradited to US
Suspected Russian NLBrute malware boss extradited to USDariy Pankov accused of infiltrating systems, selling tool and passwords to other miscreants A Russian national accused of developing...
Ukraine invasion blew up Russian cybercrime alliances
Ukraine invasion blew up Russian cybercrime alliancesStudy: Old pacts ditched the moment Moscow moved in The so-called "brotherhood" or Russian-speaking cybercriminals is yet another casualty of...